]>
git.ipfire.org Git - ipfire-2.x.git/blob - html/cgi-bin/tor.cgi
983bb30c9ad0ffc66eabb1b40136b5bbdf29c936
2 ###############################################################################
4 # IPFire.org - A linux based firewall #
5 # Copyright (C) 2013-2019 IPFire Team <info@ipfire.org> #
7 # This program is free software: you can redistribute it and/or modify #
8 # it under the terms of the GNU General Public License as published by #
9 # the Free Software Foundation, either version 3 of the License, or #
10 # (at your option) any later version. #
12 # This program is distributed in the hope that it will be useful, #
13 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
14 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
15 # GNU General Public License for more details. #
17 # You should have received a copy of the GNU General Public License #
18 # along with this program. If not, see <http://www.gnu.org/licenses/>. #
20 ###############################################################################
24 # enable only the following on debugging purpose
26 #use CGI::Carp 'fatalsToBrowser';
28 require '/var/ipfire/general-functions.pl';
29 require "${General::swroot}/location-functions.pl";
30 require "${General::swroot}/lang.pl";
31 require "${General::swroot}/header.pl";
33 #workaround to suppress a warning when a variable is used only once
34 my @dummy = ( ${Header
::colouryellow
} );
37 my @bandwidth_limits = (
38 1000 * 1024, # 1 GBit/s
41 100 * 1024, # 100 MBit/s
53 my @accounting_periods = ('daily', 'weekly', 'monthly');
55 my $TOR_CONTROL_PORT = 9051;
66 open(FILE
, '/usr/local/bin/addonctrl tor status | ');
69 $string = join("", @tor);
70 $string =~ s/[a-z_]//gi;
71 $string =~ s/\[[0-1]\;[0-9]+//gi;
72 $string =~ s/[\(\)\.]//gi;
75 @pid = split(/\s/,$string);
76 if (open(FILE
, "/proc/$pid[0]/statm")){
78 @memory = split(/ /,$temp);
85 our %netsettings = ();
86 &General
::readhash
("${General::swroot}/ethernet/settings", \
%netsettings);
89 our %mainsettings = ();
90 &General
::readhash
("${General::swroot}/main/settings", \
%mainsettings);
91 &General
::readhash
("/srv/web/ipfire/html/themes/".$mainsettings{'THEME'}."/include/colors.txt", \
%color);
95 $settings{'TOR_ENABLED'} = 'off';
96 $settings{'TOR_SOCKS_PORT'} = 9050;
97 $settings{'TOR_EXIT_COUNTRY'} = '';
98 $settings{'TOR_USE_EXIT_NODES'} = '';
99 $settings{'TOR_ALLOWED_SUBNETS'} = "$netsettings{'GREEN_NETADDRESS'}\/$netsettings{'GREEN_NETMASK'}";
100 if (&Header
::blue_used
()) {
101 $settings{'TOR_ALLOWED_SUBNETS'} .= ",$netsettings{'BLUE_NETADDRESS'}\/$netsettings{'BLUE_NETMASK'}";
104 $settings{'TOR_RELAY_ENABLED'} = 'off';
105 $settings{'TOR_RELAY_MODE'} = 'relay';
106 $settings{'TOR_RELAY_ADDRESS'} = '';
107 $settings{'TOR_RELAY_PORT'} = 9001;
108 $settings{'TOR_RELAY_DIRPORT'} = 0;
109 $settings{'TOR_RELAY_NICKNAME'} = '';
110 $settings{'TOR_RELAY_CONTACT_INFO'} = '';
111 $settings{'TOR_RELAY_BANDWIDTH_RATE'} = 0;
112 $settings{'TOR_RELAY_BANDWIDTH_BURST'} = 0;
113 $settings{'TOR_RELAY_ACCOUNTING_LIMIT'} = 0;
114 $settings{'TOR_RELAY_ACCOUNTING_PERIOD'} = 'daily';
116 $settings{'ACTION'} = '';
118 my $errormessage = '';
119 my $warnmessage = '';
121 &Header
::showhttpheaders
();
124 &Header
::getcgihash
(\
%settings);
126 # Create tor command connection.
127 our $torctrl = &TorConnect
();
129 # Toggle enable/disable field.
130 if ($settings{'ACTION'} eq $Lang::tr
{'save'}) {
131 if ($settings{'TOR_RELAY_NICKNAME'} ne '') {
132 if ($settings{'TOR_RELAY_NICKNAME'} !~ /^[a-zA-Z0-9]+$/) {
133 $errormessage = "$Lang::tr{'tor errmsg invalid relay name'}: $settings{'TOR_RELAY_NICKNAME'}";
137 if (!&General
::validport
($settings{'TOR_SOCKS_PORT'})) {
138 $errormessage = "$Lang::tr{'tor errmsg invalid socks port'}: $settings{'TOR_SOCKS_PORT'}";
141 if (!&General
::validport
($settings{'TOR_RELAY_PORT'})) {
142 $errormessage = "$Lang::tr{'tor errmsg invalid relay port'}: $settings{'TOR_RELAY_PORT'}";
144 if ($settings{'TOR_RELAY_DIRPORT'} ne '0') {
145 if (!&General
::validport
($settings{'TOR_RELAY_DIRPORT'})) {
146 $errormessage = "$Lang::tr{'tor errmsg invalid directory port'}: $settings{'TOR_RELAY_DIRPORT'}";
150 if ($settings{'TOR_RELAY_ADDRESS'} ne '') {
151 if ((!&General
::validfqdn
($settings{'TOR_RELAY_ADDRESS'})) && (!&General
::validip
($settings{'TOR_RELAY_ADDRESS'}))) {
152 $errormessage = "$Lang::tr{'tor errmsg invalid relay address'}: $settings{'TOR_RELAY_ADDRESS'}";
156 if ($settings{'TOR_RELAY_ACCOUNTING_LIMIT'} !~ /^\d+$/) {
157 $errormessage = "$Lang::tr{'tor errmsg invalid accounting limit'}: $settings{'TOR_RELAY_ACCOUNTING_LIMIT'}";
160 my @temp = split(/[\n,]/,$settings{'TOR_ALLOWED_SUBNETS'});
161 $settings{'TOR_ALLOWED_SUBNETS'} = "";
163 s/^\s+//g; s/\s+$//g;
165 unless (&General
::validipandmask
($_)) {
166 $errormessage = "$Lang::tr{'tor errmsg invalid ip or mask'}: $_";
168 $settings{'TOR_ALLOWED_SUBNETS'} .= $_.",";
172 @temp = split(/[\n,]/,$settings{'TOR_USE_EXIT_NODES'});
173 $settings{'TOR_USE_EXIT_NODES'} = "";
175 s/^\s+//g; s/\s+$//g;
177 $settings{'TOR_USE_EXIT_NODES'} .= $_.",";
181 # Burst bandwidth must be less or equal to bandwidth rate.
182 if ($settings{'TOR_RELAY_BANDWIDTH_RATE'} == 0) {
183 $settings{'TOR_RELAY_BANDWIDTH_BURST'} = 0;
185 } elsif ($settings{'TOR_RELAY_BANDWIDTH_BURST'} < $settings{'TOR_RELAY_BANDWIDTH_RATE'}) {
186 $settings{'TOR_RELAY_BANDWIDTH_BURST'} = $settings{'TOR_RELAY_BANDWIDTH_RATE'};
189 if ($errormessage eq '') {
190 # Write configuration settings to file.
191 &General
::writehash
("${General::swroot}/tor/settings", \
%settings);
193 # Update configuration files.
194 &BuildConfiguration
();
197 # Load settings from file.
198 &General
::readhash
("${General::swroot}/tor/settings", \
%settings);
203 # Close Tor control connection.
212 $checked{'TOR_ENABLED'}{'on'} = '';
213 $checked{'TOR_ENABLED'}{'off'} = '';
214 $checked{'TOR_ENABLED'}{$settings{'TOR_ENABLED'}} = 'checked';
216 $checked{'TOR_RELAY_ENABLED'}{'on'} = '';
217 $checked{'TOR_RELAY_ENABLED'}{'off'} = '';
218 $checked{'TOR_RELAY_ENABLED'}{$settings{'TOR_RELAY_ENABLED'}} = 'checked';
220 &Header
::openpage
($Lang::tr
{'tor configuration'}, 1, '');
221 &Header
::openbigbox
('100%', 'left', '', $errormessage);
224 &Header
::openbox
('100%', 'left', $Lang::tr
{'error messages'});
225 print "<font class='base'>$errormessage </font>\n";
229 print "<form method='post' action='$ENV{'SCRIPT_NAME'}'>\n";
231 &Header
::openbox
('100%', 'center', $Lang::tr
{'tor'});
234 if ( ($memory != 0) && (@pid[0] ne "///") ){
235 print "<table width='95%' cellspacing='0' class='tbl'>";
236 print "<tr><th bgcolor='$color{'color20'}' colspan='3' align='left'><strong>$Lang::tr{'tor service'}</strong></th></tr>";
237 print "<tr><td class='base'>$Lang::tr{'tor daemon'}</td>";
238 print "<td align='center' colspan='2' width='75%' bgcolor='${Header::colourgreen}'><font color='white'><strong>$Lang::tr{'running'}</strong></font></td></tr>";
239 print "<tr><td class='base'></td>";
240 print "<td bgcolor='$color{'color20'}' align='center'><strong>PID</strong></td>";
241 print "<td bgcolor='$color{'color20'}' align='center'><strong>$Lang::tr{'memory'}</strong></td></tr>";
242 print "<tr><td class='base'></td>";
243 print "<td bgcolor='$color{'color22'}' align='center'>@pid[0]</td>";
244 print "<td bgcolor='$color{'color22'}' align='center'>$memory KB</td></tr>";
247 print "<table width='95%' cellspacing='0' class='tbl'>";
248 print "<tr><th bgcolor='$color{'color20'}' colspan='3' align='left'><strong>$Lang::tr{'tor service'}</strong></th></tr>";
249 print "<tr><td class='base'>$Lang::tr{'tor daemon'}</td>";
250 print "<td align='center' width='75%' bgcolor='${Header::colourred}'><font color='white'><strong>$Lang::tr{'stopped'}</strong></font></td></tr>";
256 &Header
::openbox
('100%', 'center', $Lang::tr
{'tor configuration'});
261 <td colspan='4' class='base' bgcolor='$color{'color20'}'><b>$Lang::tr{'tor common settings'}</b></td>
264 <td width='25%' class='base'>$Lang::tr{'tor enabled'}:</td>
265 <td width='30%'><input type='checkbox' name='TOR_ENABLED' $checked{'TOR_ENABLED'}{'on'} /></td>
266 <td width='25%' class='base'>$Lang::tr{'tor socks port'}: <img src='/blob.gif' alt='*' /></td>
267 <td width='20%'><input type='text' name='TOR_SOCKS_PORT' value='$settings{'TOR_SOCKS_PORT'}' size='5' /></td>
270 <td width='25%' class='base'>$Lang::tr{'tor relay enabled'}:</td>
271 <td width='30%'><input type='checkbox' name='TOR_RELAY_ENABLED' $checked{'TOR_RELAY_ENABLED'}{'on'} /></td>
272 <td width='25%' class='base'></td>
273 <td width='20%'></td>
278 my @temp = split(",", $settings{'TOR_ALLOWED_SUBNETS'});
279 $settings{'TOR_ALLOWED_SUBNETS'} = join("\n", @temp);
281 @temp = split(",", $settings{'TOR_USE_EXIT_NODES'});
282 $settings{'TOR_USE_EXIT_NODES'} = join("\n", @temp);
290 <td colspan='4' class='base' bgcolor='$color{'color20'}'><b>$Lang::tr{'tor acls'}</b></td>
293 <td colspan='2' class='base' width='55%'>
294 $Lang::tr{'tor allowed subnets'}:
296 <td colspan='2' width='45%'></td>
299 <td colspan='2' class='base' width='55%'>
300 <textarea name='TOR_ALLOWED_SUBNETS' cols='32' rows='3' wrap='off'>$settings{'TOR_ALLOWED_SUBNETS'}</textarea>
302 <td colspan='2' width='45%'></td>
311 <td colspan='4' class='base' bgcolor='$color{'color20'}'><b>$Lang::tr{'tor exit nodes'}</b></td>
314 <td colspan='2' class='base' width='55%'></td>
315 <td colspan='2' class='base' width='45%'>$Lang::tr{'tor use exit nodes'}:</td>
318 <td width='50%' colspan='2'>
319 <select name='TOR_EXIT_COUNTRY'>
320 <option value=''>- $Lang::tr{'tor exit country any'} -</option>
322 my @country_codes = &Location
::Functions
::get_locations
("no_special_locations");
323 foreach my $country_code (@country_codes) {
324 # Convert country code into upper case format.
325 $country_code = uc($country_code);
328 my $country_name = &Location
::Functions
::get_full_country_name
($country_code);
330 print "<option value='$country_code'";
332 if ($settings{'TOR_EXIT_COUNTRY'} eq $country_code) {
336 print ">$country_name ($country_code)</option>\n";
342 <td width='50%' colspan='2'>
343 <textarea name='TOR_USE_EXIT_NODES' cols='32' rows='3' wrap='off'>$settings{'TOR_USE_EXIT_NODES'}</textarea>
352 $selected{'TOR_RELAY_MODE'}{'bridge'} = '';
353 $selected{'TOR_RELAY_MODE'}{'exit'} = '';
354 $selected{'TOR_RELAY_MODE'}{'private-bridge'} = '';
355 $selected{'TOR_RELAY_MODE'}{'relay'} = '';
356 $selected{'TOR_RELAY_MODE'}{$settings{'TOR_RELAY_MODE'}} = 'selected';
358 $selected{'TOR_RELAY_BANDWIDTH_RATE'}{'0'} = '';
359 foreach (@bandwidth_limits) {
360 $selected{'TOR_RELAY_BANDWIDTH_RATE'}{$_} = '';
362 $selected{'TOR_RELAY_BANDWIDTH_RATE'}{$settings{'TOR_RELAY_BANDWIDTH_RATE'}} = 'selected';
364 $selected{'TOR_RELAY_BANDWIDTH_BURST'}{'0'} = '';
365 foreach (@bandwidth_limits) {
366 $selected{'TOR_RELAY_BANDWIDTH_BURST'}{$_} = '';
368 $selected{'TOR_RELAY_BANDWIDTH_BURST'}{$settings{'TOR_RELAY_BANDWIDTH_BURST'}} = 'selected';
370 foreach (@accounting_periods) {
371 $selected{'TOR_RELAY_ACCOUNTING_PERIOD'}{$_} = '';
373 $selected{'TOR_RELAY_ACCOUNTING_PERIOD'}{$settings{'TOR_RELAY_ACCOUNTING_PERIOD'}} = 'selected';
375 &Header
::openbox
('100%', 'center', $Lang::tr
{'tor relay configuration'});
380 <td width='25%' class='base'>$Lang::tr{'tor relay mode'}:</td>
382 <select name='TOR_RELAY_MODE'>
383 <option value='exit' $selected{'TOR_RELAY_MODE'}{'exit'}>$Lang::tr{'tor relay mode exit'}</option>
384 <option value='relay' $selected{'TOR_RELAY_MODE'}{'relay'}>$Lang::tr{'tor relay mode relay'}</option>
385 <option value='bridge' $selected{'TOR_RELAY_MODE'}{'bridge'}>$Lang::tr{'tor relay mode bridge'}</option>
386 <option value='private-bridge' $selected{'TOR_RELAY_MODE'}{'private-bridge'}>$Lang::tr{'tor relay mode private bridge'}</option>
389 <td width='25%' class='base'>$Lang::tr{'tor relay nickname'}:</td>
391 <input type='text' name='TOR_RELAY_NICKNAME' value='$settings{'TOR_RELAY_NICKNAME'}' maxlength='19' />
395 <td width='25%' class='base'>$Lang::tr{'tor relay address'}:</td>
397 <input type='text' name='TOR_RELAY_ADDRESS' value='$settings{'TOR_RELAY_ADDRESS'}' />
399 <td width='25%' class='base'>$Lang::tr{'tor relay port'}: <img src='/blob.gif' alt='*' /></td>
401 <input type='text' name='TOR_RELAY_PORT' value='$settings{'TOR_RELAY_PORT'}' size='5' />
405 <td width='25%'> </td>
406 <td width='30%'> </td>
407 <td width='25%' class='base'>$Lang::tr{'tor directory port'}: <img src='/blob.gif' alt='*' /></td>
409 <input type='text' name='TOR_RELAY_DIRPORT' value='$settings{'TOR_RELAY_DIRPORT'}' size='5' /> $Lang::tr{'tor 0 = disabled'}
413 <td width='25%' class='base'>$Lang::tr{'tor contact info'}:</td>
414 <td width='75%' colspan='3'>
415 <input type='text' name='TOR_RELAY_CONTACT_INFO' value='$settings{'TOR_RELAY_CONTACT_INFO'}' style='width: 98%;' />
424 <td colspan='4' class='base' bgcolor='$color{'color20'}'><b>$Lang::tr{'tor bandwidth settings'}</b></td>
427 <td width='25%' class='base'>$Lang::tr{'tor bandwidth rate'}:</td>
428 <td width='30%' class='base'>
429 <select name='TOR_RELAY_BANDWIDTH_RATE'>
432 foreach (@bandwidth_limits) {
434 print "<option value='$_' $selected{'TOR_RELAY_BANDWIDTH_RATE'}{$_}>". $_ / 1024 ." Mbit/s</option
>\n";
436 print "<option value
='$_' $selected{'TOR_RELAY_BANDWIDTH_RATE'}{$_}>$_ kbit
/s</option
>\n";
441 <option value='0' $selected{'TOR_RELAY_BANDWIDTH_RATE'}{'0'}>$Lang::tr{'tor bandwidth unlimited'}</option>
444 <td width='25%' class='base'>$Lang::tr{'tor accounting limit'}: <img src='/blob.gif' alt='*' /></td>
446 <input type='text' name='TOR_RELAY_ACCOUNTING_LIMIT' value='$settings{'TOR_RELAY_ACCOUNTING_LIMIT'}' size='12' />
450 <td width='25%' class='base'>$Lang::tr{'tor bandwidth burst'}:</td>
451 <td width='20%' class='base'>
452 <select name='TOR_RELAY_BANDWIDTH_BURST'>
455 foreach (@bandwidth_limits) {
457 print "<option value='$_' $selected{'TOR_RELAY_BANDWIDTH_BURST'}{$_}>". $_ / 1024 ." Mbit/s</option
>\n";
459 print "<option value
='$_' $selected{'TOR_RELAY_BANDWIDTH_BURST'}{$_}>$_ kbit
/s</option
>\n";
463 <option value='0' $selected{'TOR_RELAY_BANDWIDTH_BURST'}{'0'}>$Lang::tr{'tor bandwidth unlimited'}</option>
466 <td width='25%' class='base'>$Lang::tr{'tor accounting period'}:</td>
468 <select name='TOR_RELAY_ACCOUNTING_PERIOD'>
471 foreach (@accounting_periods) {
472 print "<option value='$_' $selected{'TOR_RELAY_ACCOUNTING_PERIOD'}{$_}>$Lang::tr{'tor accounting period '.$_}</option>";
487 <td><img src='/blob.gif' align='top' alt='*' /> <font class='base'>$Lang::tr{'required field'}</font></td>
488 <td align='right'> </td>
497 <td align='center'><input type='submit' name='ACTION' value='$Lang::tr{'save'}' /></td>
503 # If we have a control connection, show the stats.
505 &Header
::openbox
('100%', 'center', $Lang::tr
{'tor stats'});
507 my @traffic = &TorTrafficStats
($torctrl);
514 if ($settings{'TOR_RELAY_ENABLED'} eq 'on') {
515 my $fingerprint = &TorRelayFingerprint
($torctrl);
519 <td width='40%' class='base'>$Lang::tr{'tor relay fingerprint'}:</td>
521 <a href='https://metrics.torproject.org/rs.html#details/$fingerprint' target='_blank'>$fingerprint</a>
528 my $address = TorGetInfo
($torctrl, "address");
532 <td width='40%' class='base'>$Lang::tr{'tor relay external address'}:</td>
533 <td width='60%'>$address</td>
540 <td width='40%'>$Lang::tr{'tor traffic read written'}:</td>
542 print "<td width='60%'>" . &FormatBytes
($traffic[0]) ."/". &FormatBytes
($traffic[1]) . "</td>";
549 my $accounting = &TorAccountingStats
($torctrl);
554 <td colspan='2' class='base'><b>$Lang::tr{'tor accounting'}</b></td>
558 if ($accounting->{'hibernating'} eq "hard") {
561 <td class='base' colspan='2' bgcolor="$Header::colourred" align='center'>
562 <font color='white'>$Lang::tr{'tor traffic limit hard'}</font>
566 } elsif ($accounting->{'hibernating'} eq "soft") {
569 <td class='base' colspan='2' bgcolor="$Header::colourorange" align='center'>
570 <font color='white'>$Lang::tr{'tor traffic limit soft'}</font>
578 <td width='40%' class='base'>$Lang::tr{'tor accounting interval'}</td>
580 $accounting->{'interval-start'} - $accounting->{'interval-end'}
584 <td width='40%' class='base'>$Lang::tr{'tor accounting bytes'}</td>
588 print &FormatBytes
($accounting->{'bytes_read'}) . "/" . &FormatBytes
($accounting->{'bytes_written'});
589 print " (" . &FormatBytes
($accounting->{'bytes-left_read'}) . "/" . &FormatBytes
($accounting->{'bytes-left_written'});
590 print " $Lang::tr{'tor accounting bytes left'})";
599 my @nodes = &TorORConnStatus
($torctrl);
601 my $nodes_length = scalar @nodes;
605 <td width='40%' class='base'><b>$Lang::tr{'tor connected relays'}</b></td>
606 <td width='60%' colspan='2'>($nodes_length)</td>
610 foreach my $node (@nodes) {
614 <a href='https://metrics.torproject.org/rs.html#details/$node->{'fingerprint'}' target='_blank'>
621 if (exists($node->{'country_code'})) {
622 # Get the flag icon of the country.
623 my $flag_icon = &Location
::Functions
::get_flag_icon
($node->{'country_code'});
625 # Check if a flag for the given country is available.
627 print "<a href='country.cgi#$node->{'country_code'}'><img src='$flag_icon' border='0' align='absmiddle' alt='$node->{'country_code'}'></a>";
629 print "<img src='/images/flags/blank.png' border='0' align='absmiddle'/>";
634 <a href='ipinfo.cgi?ip=$node->{'address'}'>$node->{'address'}</a>:$node->{'port'}
636 <td width='30%' align='right'>
637 ~$node->{'bandwidth_string'}
650 &Header
::closebigbox
();
651 &Header
::closepage
();
654 sub BuildConfiguration
() {
656 &General
::readhash
("${General::swroot}/tor/settings", \
%settings);
658 my $torrc = "${General::swroot}/tor/torrc";
660 open(FILE
, ">$torrc");
663 print FILE
"ControlPort $TOR_CONTROL_PORT\n";
665 if ($settings{'TOR_ENABLED'} eq 'on') {
666 my $strict_nodes = 0;
668 print FILE
"SocksPort 0.0.0.0:$settings{'TOR_SOCKS_PORT'}\n";
670 my @subnets = split(",", $settings{'TOR_ALLOWED_SUBNETS'});
672 print FILE
"SocksPolicy accept $_\n" if (&General
::validipandmask
($_));
674 print FILE
"SocksPolicy reject *\n" if (@subnets);
676 if ($settings{'TOR_EXIT_COUNTRY'} ne '') {
679 print FILE
"ExitNodes {$settings{'TOR_EXIT_COUNTRY'}}\n";
682 if ($settings{'TOR_USE_EXIT_NODES'} ne '') {
685 my @nodes = split(",", $settings{'TOR_USE_EXIT_NODES'});
687 print FILE
"ExitNode $_\n";
691 if ($strict_nodes > 0) {
692 print FILE
"StrictNodes 1\n";
696 if ($settings{'TOR_RELAY_ENABLED'} eq 'on') {
697 # Reject access to private networks.
698 print FILE
"ExitPolicyRejectPrivate 1\n";
700 print FILE
"ORPort $settings{'TOR_RELAY_PORT'}\n";
702 if ($settings{'TOR_RELAY_DIRPORT'} ne '0') {
703 print FILE
"DirPort $settings{'TOR_RELAY_DIRPORT'}\n";
706 if ($settings{'TOR_RELAY_ADDRESS'} ne '') {
707 print FILE
"Address $settings{'TOR_RELAY_ADDRESS'}\n";
710 if ($settings{'TOR_RELAY_NICKNAME'} ne '') {
711 print FILE
"Nickname $settings{'TOR_RELAY_NICKNAME'}\n";
714 if ($settings{'TOR_RELAY_CONTACT_INFO'} ne '') {
715 print FILE
"ContactInfo $settings{'TOR_RELAY_CONTACT_INFO'}\n";
718 # Limit to bridge mode.
721 if ($settings{'TOR_RELAY_MODE'} eq 'bridge') {
725 } elsif ($settings{'TOR_RELAY_MODE'} eq 'private-bridge') {
728 print FILE
"PublishServerDescriptor 0\n";
731 } elsif ($settings{'TOR_RELAY_MODE'} eq 'exit') {
732 print FILE
"ExitPolicy accept *:*\n";
735 } elsif ($settings{'TOR_RELAY_MODE'} eq 'relay') {
736 print FILE
"ExitPolicy reject *:*\n";
739 if ($is_bridge > 0) {
740 print FILE
"BridgeRelay 1\n";
741 print FILE
"Exitpolicy reject *:*\n";
744 if ($settings{'TOR_RELAY_BANDWIDTH_RATE'} > 0) {
745 print FILE
"RelayBandwidthRate ";
746 print FILE
$settings{'TOR_RELAY_BANDWIDTH_RATE'} / 8;
749 if ($settings{'TOR_RELAY_BANDWIDTH_BURST'} > 0) {
750 print FILE
"RelayBandwidthBurst ";
751 print FILE
$settings{'TOR_RELAY_BANDWIDTH_BURST'} / 8;
756 if ($settings{'TOR_RELAY_ACCOUNTING_LIMIT'} > 0) {
757 print FILE
"AccountingMax ".$settings{'TOR_RELAY_ACCOUNTING_LIMIT'}." MB\n";
759 if ($settings{'TOR_RELAY_ACCOUNTING_PERIOD'} eq 'daily') {
760 print FILE
"AccountingStart day 00:00\n";
761 } elsif ($settings{'TOR_RELAY_ACCOUNTING_PERIOD'} eq 'weekly') {
762 print FILE
"AccountingStart week 1 00:00\n";
763 } elsif ($settings{'TOR_RELAY_ACCOUNTING_PERIOD'} eq 'monthly') {
764 print FILE
"AccountingStart month 1 00:00\n";
771 # Restart the service.
772 if (($settings{'TOR_ENABLED'} eq 'on') || ($settings{'TOR_RELAY_ENABLED'} eq 'on')) {
773 system("/usr/local/bin/torctrl restart &>/dev/null");
775 system("/usr/local/bin/torctrl stop &>/dev/null");
777 # Update pid and memory
782 my $socket = new IO
::Socket
::INET
(
783 Proto
=> 'tcp', PeerAddr
=> '127.0.0.1', PeerPort
=> $TOR_CONTROL_PORT,
786 $socket->autoflush(1);
789 &TorSendCommand
($socket, "AUTHENTICATE");
794 sub TorSendCommand
() {
795 my ($socket, $cmd) = @_;
797 # Replace line ending with \r\n.
804 while (my $line = <$socket>) {
806 if ($line =~ /^.\r\n$/) {
810 # Command has been successfully executed.
811 if ($line =~ /250 OK/) {
815 } elsif ($line =~ /^5\d+/) {
819 # Remove line endings.
822 push(@output, $line);
829 sub TorSendCommandOneLine
() {
830 my ($tor, $cmd) = @_;
832 my @output = &TorSendCommand
($tor, $cmd);
837 my ($tor, $cmd) = @_;
839 my $output = &TorSendCommandOneLine
($tor, "GETINFO ".$cmd);
841 my ($key, $value) = split("=", $output);
849 $socket->shutdown(2);
853 sub TorTrafficStats
() {
856 my $output_read = &TorGetInfo
($tor, "traffic/read");
857 my $output_written = &TorGetInfo
($tor, "traffic/written");
859 return ($output_read, $output_written);
862 sub TorRelayFingerprint
() {
865 return &TorGetInfo
($tor, "fingerprint");
868 sub TorORConnStatus
() {
872 my @output = &TorSendCommand
($tor, "GETINFO orconn-status");
874 $_ =~ s/^250[\+-]orconn-status=//;
877 next unless ($_ =~ /^\$/);
879 my @line = split(" ", $_);
880 my @node = split(/[=~]/, $line[0]);
882 my $node = &TorNodeDescription
($tor, $node[0]);
889 @nodes = sort { $a->{'name'} cmp $b->{'name'} } @nodes;
894 sub TorNodeDescription
() {
895 my ($tor, $fingerprint) = @_;
896 $fingerprint =~ s/\$//;
899 fingerprint
=> $fingerprint,
903 my @output = &TorSendCommand
($tor, "GETINFO ns/id/$node->{'fingerprint'}");
907 if ($_ =~ /^r (\w+) (.*) (\d{1,3}\.\d{1,3}\.\d{1,3}\.\d{1,3}) (\d+)/) {
908 $node->{'name'} = $1;
909 $node->{'address'} = $3;
910 $node->{'port'} = $4;
912 my $country_code = &Location
::Functions
::lookup_country_code
($node->{'address'});
913 $node->{'country_code'} = $country_code;
916 } elsif ($_ =~ /^s (.*)$/) {
917 $node->{'flags'} = split(" ", $1);
919 foreach my $flag ($node->{'flags'}) {
920 if ($flag eq "Exit") {
921 $node->{'exit_node'}++;
926 } elsif ($_ =~ /^w Bandwidth=(\d+)/) {
927 $node->{'bandwidth'} = $1 * 8;
928 $node->{'bandwidth_string'} = &FormatBitsPerSecond
($node->{'bandwidth'});
932 if (exists($node->{'name'})) {
937 sub TorAccountingStats
() {
941 my $enabled = &TorGetInfo
($tor, "accounting/enabled");
942 if ($enabled ne '1') {
946 my @cmds = ("hibernating", "interval-start", "interval-end");
948 $ret->{$_} = &TorGetInfo
($tor, "accounting/$_");
951 my @cmds = ("bytes", "bytes-left");
953 my $output = &TorGetInfo
($tor, "accounting/$_");
954 my @bytes = split(" ", $output);
956 $ret->{$_."_read"} = $bytes[0];
957 $ret->{$_."_written"} = $bytes[1];
966 my @units = ("B", "KB", "MB", "GB", "TB");
969 while (($units_index <= $#units) && ($bytes >= 1024)) {
974 return sprintf("%.2f %s", $bytes, $units[$units_index]);
977 sub FormatBitsPerSecond
() {
980 my @units = ("bit/s", "kbit/s", "Mbit/s", "Gbit/s", "Tbit/s");
983 while (($units_index <= $#units) && ($bits >= 1024)) {
988 return sprintf("%.2f %s", $bits, $units[$units_index]);